Comment 7 for bug 1978890

Revision history for this message
Lucas Albuquerque Medeiros de Moura (lamoura) wrote :

We discussed this on the UA team and we believe we can warn the user of the potential problems of enabling FIPS we using a OEM kernel, but we don't think we should block this on the UA side, since users could still be aware of the risk and follow through with the procedure.

However, before we deliver this through UA, we believe we need to sort the GRUB_FLAVOUR_ORDER scenario. Otherwise we will warn the user and even if they want to proceed with FIPS, the will end up in the OEM kernel regardless.

But let us know if you think we should definitely block enabling FIPS on a machine running a OEM kernel.